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In the Claims; 

Claim 1 . (Amended) A method for identification, comprising the steps of: 

(a) generating system parameters G/, G2, P and e and storing the system parameters in 
a memory by a system administrator, wherein Gj and G2 are cyclic groups of order m y P is a 
generator on the cyclic group G/, e is a bilinear map defined as 

7: G 1 XG 1 h>G 2 

(b) generating a private key <a, 6, c> and a public key v and storing the public key v 
in the memory by a prover or the system administrator, wherein a, b and c are randomly 
chosen in Z m * where Z m * is a multiplicative group of order m; 

(c) generating random numbers r l9 r2,r3 ^ Zm for obtaining an evidence (x, Q) and 
sending the evidence (x, 0 to a verifier by the prover; 

(d) receiving the evidence (x, Q), selecting a randomly selected number w □ Z m * Q) 
g Zm * to obtain a query /?, storing the evidence (x, Q) and the randomly selected number co 
in the memory and sending the query R to the prover by the verifier; 

(e) receiving the query R, computing a temporary value S to obtain a response Y and 
sending the response Yto the verifier by the prover; and 

(f) determining a legitimacy of the prover by employing the system parameters Gy, 
G 2 , P and e, the public key v, the evidence (x, Q) and the randomly selected number co by the 
verifier. 
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Claim 2. (Original) The method of claim 1, wherein, in the step (b), the public key 

abc 



v=e(P, FY 

v is obtained by 



Claim 3. (Original) The method of claim 2, wherein, in the step (c), the evidence 

A V V V 

x=e(P, P) 1 2 3 

(jc, Q) includes a first evidence value v y and a second 



evidence value 



Q=r x r 2 r 3 P 



Claim 4. (Original) The method of claim 3, wherein, in the step (d), the query R is 

R=®P 

obtained by 

Claim 5. (Original) The method of claim 4, wherein, in the step (e), the temporary 

S=r x r 2 r ? R 

value S is obtained by ^ and the response Y is obtained by 



Y=abcP+(a+b+c)S 



Claim 6. (Original) The method of claim 5, wherein the verifier determines the 

legitimacy of the prover by verifying 
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e(Y,P) =e(abcP+(a+b+c)S,P) 

= e{abcP+(a+b+cy x r 2 rJt,P) 

= etabcP+ia+b+cyffjiiPf) 

= e((abc+(a+b+cy x r 2 r^)P,P) 

a abc+(a+b+c)r.rj'Jii 

= e(P,P) 

^ { p,py bc • e\p,p) ia+b+cyw 

= e(P,P) abc • <(a+6+c),P0 ffl 
= <P,P) a6c • e(aP+bP+cP,QY 
=v • e(aP+bP+cP,Qy 

Claim 7. (Amended) a method for identification, comprising the steps of: 

(a) generating system parameters G„ ft, P and I and storing the system parameters in 
a memory by a system administrator, wherein Gi and G2 are cyclic groups of order m, P is a 
generator on the cyclic group G„ i is a bilinear map defined as 
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e: G 1 XG 1 ^G 2 

9 

(b) generating a private key <a/ 9 02, ... tfn> and a public key v and storing the public 
key v in the memory by a prover or the system administrator, wherein a/, a?, ... a n are 
randomly chosen in Z m * where Z m * is a multiplicative group of order m\ 

(c) generating random numbers r h r 2 , ... r„ G Z w * for obtaining an evidence (x, 0 
and sending the evidence (x, Q) to a verifier by the prover; 

(d) receiving the evidence (x, Q), selecting a randomly selected number co □ Z m * co 
g Zm * to obtain a query i?> storing the evidence (x, Q) and the randomly selected number co 
in the memory and sending the query R to the prover by the verifier; 

(e) receiving the query R, computing a temporary value S to obtain a response Y and 
sending the response Y to the verifier by the prover; and 

(f) determining a legitimacy of the prover by employing the system parameters G/, 
G2, P and e, the public key v, the evidence (x, Q) and the randomly selected number co by the 
verifier. 

Claim 8. (Original) The method of claim 7, wherein, in the step (b), the public key 

v is obtained by v = e(P, P) a > a > ~\ 

Claim 9. (Original) The method of claim 8> wherein, in the step (c), the evidence 

(x, Q) includes a first evidence value 

v = e(P } P) r ' r >~ r * and a second evidence value Q = ryr^. . .r n P. 

-10- 

NYDOCSl-693633.1 



DE1484 



Claim 10. (Original) The method of claim 9, wherein, in the step (d), the query R is 

obtained by 

Claim 11. (Original) The method of claim 10, wherein, in the step (e), the temporary 

value S is obtained by S = rjr 2 ...r„R and the response Y is obtained by Y = a } a 2 ^.a n P + 
(a^+.-.+arJS 



Claim 12. (Original) The method of claim 11, wherein the verifier determines the 

legitimacy of the prover by verifying 

e(Y, P)= e(am^a n P + (aj+a 2 + r P) 
= e(aia 2 ..MnP + (ai+a 2 +...+a n )r 1 r 2 ...r n R i P) 

= e(aia 2 „.a n P + (a } +a 2 +... +a n }rir 2 ...r n coP ) P) 
= e((aia 2 .,.a n + (^/+a2+...+a^r/r 2 ...r w cy)^ PJ 

= etf P/ 1 "^ • m rir 2 ...r n P) (w -^ 
= e(P, P)** 0 *""* * e(P, Q)( a i Jra i J " ' + a J 0} 

= etf P) a ^- a " *e(a l P+a 2 P+...+a n P, Qf 
= v • e(aiP+a 2 P+...+a n P, Q) w . 
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